Detailed Review on The Denial of Service (DoS) and Distributed Denial of Service (DDoS) Attacks in Software Defined Networks (SDNs) and Defense Strategies
(1) Kwame Nkrumah University of Science and Technology, PMB UPO, 00233, Ghana
(2) Kwame Nkrumah University of Science and Technology, PMB UPO, 00233, Ghana
(3) Kwame Nkrumah University of Science and Technology, PMB UPO, 00233, Ghana
(4) Kwame Nkrumah University of Science and Technology, PMB UPO, 00233, Ghana
(*) Corresponding Author
The development of Software Defined Networking (SDN) has altered the landscape of computer networking in recent years. Its scalable architecture has become a blueprint for the design of several advanced future networks. To achieve improve and efficient monitoring, control and management capabilities of the network, software defined networks differentiate or decouple the control logic from the data forwarding plane. As a result, logical control is centralized solely in the controller. Due to the centralized nature, SDNs are exposed to several vulnerabilities such as Spoofing, Flooding, and primarily Denial of Service (DoS) and Distributed Denial of Service (DDoS) among other attacks. In effect, the performance of SDN degrades based on these attacks. This paper presents a comprehensive review of several DoS and DDoS defense/mitigation strategies and classifies them into distinct classes with regards to the methodologies employed. Furthermore, suggestions were made to enhance current mitigation strategies accordingly.
